Implementing Effective Enterprise Risk Management in Federal Government

Government faces increasing uncertainties as agencies pursue diverse and complex missions. That’s why more federal agencies are investing in Enterprise Risk Management (ERM), a discipline that addresses the full spectrum of an organization’s risks, including challenges and opportunities, and integrates them into an enterprisewide, strategically aligned portfolio view.

NIST Password Guidelines and Microsoft got Password Security Wrong (Part 1)

Security or convenience is no longer an acceptable trade-off when it comes to cybersecurity. They must be mutually inclusive, otherwise employees will circumvent security for their own personal convenience. NIST and Microsoft understands this to a degree, but in the latest NIST Password Guidelines SP 800-63-3 the recommendations favors password convenience over password security.